
PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Application Security Verification Standard

Everything about Web Application Firewalls (WAFs) from Security Standpoint! 🔥

CSPBypass.com, a tool designed to help ethical hackers bypass restrictive Content Security Policies (CSP) and exploit XSS (Cross-Site Scripting)…

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

This repository provides a centralized resource for operational cyber defense and offense, compiling Theory, Tools, Operating Procedures, and…

Comprehensive set of over 1500 AppArmor profiles to confine Linux system processes, desktops, and services, with support for multiple distributions…

Curated collection of injection payloads for web application security testing, covering SSTI, XXE, XSS, SSRF, SQLi, NoSQLi, LDAP, command injection,…

A Framework for Integrating Application Security into Software Engineering (FIASSE) using the Securable Software Engineering Model (SSEM)

Curated list of web application security resources including books, tools, cheat sheets, labs, and courses for learning penetration testing and…


🛡️Awesome lists about all kinds of interesting topics of Wazuh XDR/SIEM

Step-by-step guide for hardening a Linux server, covering SSH security, firewalls, intrusion detection, auditing, and system configuration to reduce…

OWASP IoT Security Verification Standard (ISVS)

OWASP Thick Client Application Security Verification Standard

A collection of awesome security hardening guides, tools and other resources

Collection of proof-of-concept exploits and technical analyses for high-impact CVEs, covering browser memory corruption, TCP/IP RCE, and web…
